Known vulnerabilities in SUSE Linux Enterprise High Availability 15-SP3 - page 8

Vendor: SUSE
Version: 15-SP3
Software CPE: cpe:2.3:o:suse:suse_linux_enterprise_high_availability:*:*:*:*:*:*:*:*
Total vulnerabilities: 352
Public exploits: 22
Known exploited (KEV): 6
Highest CVSSv4 Score: 9.4

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting SUSE Linux Enterprise High Availability version 15-SP3 SUSE Linux Enterprise High Availability 15-SP3 is affected by 352 vulnerabilities: 14 high, 61 medium, 277 low Critical High Medium Low

Vulnerabilities (352)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU68860 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2022-31163
CWE-22 Medium
No
No
- 31.10.2022 SB2022103147
SB2022103161
SB2022072942
and 6 more
#VU66704 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-32209
CWE-79 Low
No
No
- 23.08.2022 SB2022082304
SB2022082309
SB2022082429
and 4 more
#VU66476 - Improper input validation
CVE-2022-36946
CWE-20 Medium
Public exploit available
No
- 13.08.2022 SB2022081305
SB2022081647
SB2022081739
and 73 more
#VU65903 - Permissions, Privileges, and Access Controls
CVE-2022-2553
CWE-264 Low
No
No
- 01.08.2022 SB2022080105
SB2022080113
SB2022080114
and 12 more
#VU65360 - Type confusion
CVE-2022-34918
CWE-843 Low
Public exploit available
Exploited
- 15.07.2022 SB2022071602
SB2022071820
SB2022071822
and 36 more
#VU65351 - Exposure of sensitive information to an unauthorized actor
CVE-2022-33741
CWE-200 Low
No
No
- 15.07.2022 SB2022071603
SB2022071604
SB2022071605
and 59 more
#VU65348 - Exposure of sensitive information to an unauthorized actor
CVE-2022-33742
CWE-200 Low
No
No
- 15.07.2022 SB2022071603
SB2022071604
SB2022071605
and 56 more
#VU64944 - Use After Free
CVE-2022-33981
CWE-416 Low
No
No
- 06.07.2022 SB2022070606
SB2022070743
SB2022071346
and 37 more
#VU64863 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-30123
CWE-78 High
No
No
- 02.07.2022 SB2022070222
SB2022070430
SB2022072530
and 14 more
#VU64862 - Improper input validation
CVE-2022-30122
CWE-20 Medium
No
No
- 02.07.2022 SB2022070222
SB2022070430
SB2022072530
and 8 more
#VU64861 - Use After Free
CVE-2022-1679
CWE-416 Low
No
No
- 02.07.2022 SB2022070218
SB2022070221
SB2022070717
and 82 more
#VU64263 - Use After Free
CVE-2022-1974
CWE-416 Low
No
No
- 14.06.2022 SB2022061417
SB2022061630
SB2022061633
and 28 more
#VU64207 - Permissions, Privileges, and Access Controls
CVE-2022-20154
CWE-264 Low
No
No
- 13.06.2022 SB2022061414
SB2022071602
SB2022071603
and 32 more
#VU64136 - Exposure of sensitive information to an unauthorized actor
CVE-2022-20132
CWE-200 Low
No
No
- 09.06.2022 SB2022061009
SB2022071346
SB2022071602
and 26 more
#VU64134 - Permissions, Privileges, and Access Controls
CVE-2022-20141
CWE-264 Low
No
No
- 09.06.2022 SB2022061009
SB2022062437
SB2022062440
and 57 more
#VU64079 - Missing release of memory after effective lifetime
CVE-2022-1012
CWE-401 Medium
No
No
- 08.06.2022 SB2022060827
SB2022061417
SB2022062437
and 75 more
#VU64070 - Use After Free
CVE-2022-1966
CWE-416 Low
Public exploit available
No
- 08.06.2022 SB2022060822
SB2022060823
SB2022060824
and 44 more
#VU63323 - Memory corruption
CVE-2021-4157
CWE-119 High
No
No
- 17.05.2022 SB2022051833
SB2022062928
SB2022062931
and 27 more
#VU61565 - Exposure of resource to wrong sphere
CVE-2021-26341
CWE-668 Low
No
No
- 23.03.2022 SB2022032308
SB2022071346
SB2022071602
and 32 more
#VU54455 - Protection Mechanism Failure
CVE-2020-26541
CWE-693 Low
No
No
- 30.06.2021 SB2020100224
SB2021063015
SB2021063016
and 26 more


Showing elements 141 - 160 out of 352